They suggest to Check that 52.87.98.44, 34.196.167.176, and 3.218.25.102 IPs are not blocked at 80 and 443 ports.
I tried if it’s possible to allowlist those IPs, but it seems this is not possible with the cloudflare basic settings.
Blocking requests from a security scanner is a good thing. You don’t want other people scanning your site for vulnerabilities.
If you want to allow it then create a Cloudflare WAF custom rule (preferred) or IP Access Rule to allow the IP addresses of the scanner to bypass Cloudflare protections.